cosmoscrew / ssrf-playground
A playground to practice SSRF Attacks against web apps
☆17Updated 6 years ago
Related projects ⓘ
Alternatives and complementary repositories for ssrf-playground
- The Recon scanning tool scans websites for open files & directories specified in the custom config file. Default server configuration fil…☆15Updated 6 years ago
- A better dns bruteforcer written in golang☆13Updated 6 years ago
- Everything about xss protection technology☆15Updated 5 years ago
- A multi-threaded scanner that helps identify CORS flaws/misconfigurations☆18Updated 5 years ago
- A tool that can help detect and takeover subdomains with dead DNS records☆12Updated 6 years ago
- Bug Bounty Clipboard☆17Updated 5 years ago
- ☆20Updated 5 years ago
- A parallel scanner that utilises axiom to spin up servers and parallel scan using masscan.☆16Updated 4 years ago
- Slides of the talk on Injection attacks in apps with NoSQL Backends, given at null OWASP Bangalore monthly meet on 27th April 2019☆22Updated 5 years ago
- A Burp Suite content discovery plugin that add the smart into the Buster!☆31Updated 6 years ago
- View screenshots as a slideshow over http☆15Updated 4 years ago
- OWASP ZAP add-on to detect reflected parameter vulnerabilities efficiently☆12Updated 3 years ago
- Interactsh deployment to AWS EC2 Instance with Terraform☆11Updated 2 years ago
- parsers to make life easier☆12Updated 4 years ago
- String or worldlist encoder for use in fuzzing or web application testing☆17Updated 5 years ago
- Take a list of URIs and print all the of the paths☆10Updated 4 years ago
- Static analysis of APKs with regular expressions☆10Updated 3 years ago
- Simple tools to handle string and generate subdomain permutations☆14Updated 2 years ago
- Merge results from NMAP and Masscan into one CSV file☆18Updated 6 years ago
- It becomes the extension of Burp suite. The cookie set by the BipIP server may include a private IP, which is an extension to detect tha…☆15Updated 6 months ago
- A simple grep user interface for searching code which can be used for SAST.☆8Updated 5 years ago
- Burp Suite extension for extracting metadata from files☆19Updated 3 years ago
- Of the thousands of lazy reconnaissance scripts, this one is by far the one in this repository.☆11Updated 3 years ago
- Find unreferenced AWS S3 buckets which have CloudFront CNAME records pointing to them☆37Updated 6 years ago
- Boxer: A fast directory bruteforce tool written in Python with concurrency.☆15Updated 3 years ago
- This extension redacts potentially sensitive header and parameter values from requests using Shannon Entropy analysis.☆12Updated 3 years ago
- CVE-2020-5902☆9Updated 4 years ago